Known vulnerabilities in PowerScale OneFS - page 6

Vendor: Dell
Software CPE: cpe:2.3:h:dell:powerscale_onefs:*:*:*:*:*:*:*:*
Total vulnerabilities: 159
Public exploits: 10
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting PowerScale OneFS PowerScale OneFS is affected by 159 known vulnerabilities: 22 high, 58 medium, 79 low Critical High Medium Low

Vulnerabilities (159)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79411 - Memory corruption
CVE-2022-34410
CWE-119 Low
No
No
11.7 11.08.2023 SB2023081124
SB2023081126
SB2023081423
and 3 more
#VU79410 - Memory corruption
CVE-2022-34411
CWE-119 Low
No
No
11.7 11.08.2023 SB2023081124
SB2023081126
SB2023081423
and 3 more
#VU79409 - Memory corruption
CVE-2022-34412
CWE-119 Low
No
No
11.7 11.08.2023 SB2023081124
SB2023081126
SB2023081423
and 3 more
#VU79405 - Memory corruption
CVE-2022-34408
CWE-119 Low
No
No
11.7 11.08.2023 SB2023081124
SB2023081126
SB2023081423
and 3 more
#VU79404 - Memory corruption
CVE-2022-34409
CWE-119 Low
No
No
11.7 11.08.2023 SB2023081124
SB2023081126
SB2023081423
and 3 more
#VU79403 - Memory corruption
CVE-2022-34407
CWE-119 Low
No
No
11.7 11.08.2023 SB2023081124
SB2023081126
SB2023081423
and 3 more
#VU78999 - Improper control of a resource through its lifetime
CVE-2023-25942
CWE-664 Low
No
No
9.2.1.22, 9.4.0.13, 9.5.0.1, 9.1.0.28 07.08.2023 SB2023080721
#VU78998 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-25940
CWE-59 Low
No
No
9.5.0.1, 9.1.0.28, 9.2.1.22, 9.4.0.13 07.08.2023 SB2023080721
#VU78997 - Incorrect Default Permissions
CVE-2023-25941
CWE-276 Medium
No
No
9.2.1.22, 9.4.0.13, 9.5.0.2, 9.1.0.28, 9.5.0.1 07.08.2023 SB2023080721
#VU71752 - Integer overflow
CVE-2022-24963
CWE-190 High
No
No
9.4.0.14 02.02.2023 SB2023020209
SB2023020211
SB2023022704
and 19 more
#VU64089 - Improper Authentication
CVE-2022-31813
CWE-287 Medium
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 49 more
#VU64088 - Out-of-bounds read
CVE-2022-30556
CWE-125 Medium
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 31 more
#VU64086 - Resource exhaustion
CVE-2022-30522
CWE-400 Medium
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061723
and 31 more
#VU64085 - Improper input validation
CVE-2022-29404
CWE-20 Medium
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 30 more
#VU64083 - Out-of-bounds read
CVE-2022-28615
CWE-125 Low
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 41 more
#VU64081 - Out-of-bounds read
CVE-2022-28614
CWE-125 Low
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 36 more
#VU64080 - Out-of-bounds read
CVE-2022-28330
CWE-125 Medium
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022070730
and 11 more
#VU64078 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-26377
CWE-444 Medium
Available
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 39 more
#VU62112 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-26815
CWE-94 Low
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 12.04.2022 SB2022041233
SB2023080721
#VU26236 - Permissions, Privileges, and Access Controls
CVE-2019-15876
CWE-264 Low
No
No
9.1.0.28, 9.2.1.22, 9.4.0.13, 9.5.0.1 19.03.2020 SB2020031933
SB2023080721


Showing elements 101 - 120 out of 159